An open API service providing repository metadata for many open source software ecosystems.

GitHub topics: appsec-tutorials

whitespots/devsecops-docs

Our documentation

Size: 811 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 0 - Forks: 0

roottusk/vapi

vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.

Language: HTML - Size: 23.8 MB - Last synced at: 11 days ago - Pushed at: 5 months ago - Stars: 1,261 - Forks: 318

HXSecurity/DongTai-agent-java

Java Agent is a Java application probe of DongTai IAST, which collects method invocation data during runtime of Java application by dynamic hooks.

Language: Java - Size: 30.6 MB - Last synced at: 16 days ago - Pushed at: over 1 year ago - Stars: 685 - Forks: 206

yevh/VulnPlanet

Vulnerable code snippets with fixes for Web2, Web3, API, iOS, Android and Infrastructure-as-Code (IaC)

Size: 2.29 MB - Last synced at: about 1 month ago - Pushed at: 10 months ago - Stars: 159 - Forks: 22

sahildari/secure-coding-examples

This repository provides practical examples for developers and security professionals seeking to implement secure coding practices in their applications and operational workflows. It covers common security vulnerabilities such as path manipulation, file upload flaws, and input validation issues, offering robust solutions to mitigate these risks.

Language: Java - Size: 148 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 0 - Forks: 0

jassics/security-study-plan

Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so on...

Size: 3.76 MB - Last synced at: 2 months ago - Pushed at: 4 months ago - Stars: 4,567 - Forks: 576

security-prince/Resources-for-Application-Security

Some good resources for getting started with application security

Size: 50.8 KB - Last synced at: 26 days ago - Pushed at: about 4 years ago - Stars: 142 - Forks: 23

HXSecurity/DongTai-Plugin-IDEA

Dongtai-plugin-idea is an IDEA plug-in developed by DongTai team for Java Web application developers. This plug-in provides functions such as vulnerability detection and code audit during application development, enabling developers to find application vulnerabilities more intuitively, quickly and in real time during application development.

Language: Java - Size: 14.3 MB - Last synced at: about 1 month ago - Pushed at: over 1 year ago - Stars: 27 - Forks: 18

rstatsinger/contrast-java-webgoat-docker

Contrast Security Instrumentation for Dockerized Webgoat, with lab instructions.

Language: Dockerfile - Size: 25 MB - Last synced at: 9 months ago - Pushed at: almost 3 years ago - Stars: 27 - Forks: 21

zzzteph/appsec.study

AppsecStudy - open-source elearning management system for information security

Language: JavaScript - Size: 5.45 MB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 4 - Forks: 2

jeroenvdmeer/cyberescaperoom

A playful introduction to web application vulnerabilities in the OWASP Top 10 while relying only on developer tools offered by modern web browsers.

Language: JavaScript - Size: 3.17 MB - Last synced at: 17 days ago - Pushed at: over 2 years ago - Stars: 2 - Forks: 0

HXSecurity/DongTai-engine 📦

This repository has been merged into https://github.com/HXSecurity/DongTai. DongTai-engine used to analyze the method data collected by the probe, analyze whether there are vulnerabilities in API requests through the algorithm of taint tracking, and is also responsible for timing tasks, including: expired log cleaning, probe state maintenance, data packet replay processing, etc.

Language: Python - Size: 16.4 MB - Last synced at: almost 2 years ago - Pushed at: about 3 years ago - Stars: 18 - Forks: 25

SecuringTheStack/tutorials

Additional Resources For Securing The Stack Tutorials

Language: JavaScript - Size: 17.9 MB - Last synced at: over 1 year ago - Pushed at: over 6 years ago - Stars: 38 - Forks: 17

filipkarc/sqli-postgres-rce-privesc-hacking-playground

Application with SQL Injection vulnerability and possible privilege escalation. Free vulnerable app for ethical hacking / penetration testing training.

Language: PHP - Size: 3 MB - Last synced at: over 2 years ago - Pushed at: over 2 years ago - Stars: 58 - Forks: 12

we45/ZAP-Mini-Workshop

Interactive IPython Notebook to demonstrate OWASP ZAP's API and Scripting Functions - OWASP ZAP 2.8.0

Language: Jupyter Notebook - Size: 824 KB - Last synced at: over 2 years ago - Pushed at: over 2 years ago - Stars: 37 - Forks: 13

thegoodparts/appsec

The Good Parts of Application Security: learn how to build and test secure webapps

Language: Java - Size: 4.35 MB - Last synced at: over 2 years ago - Pushed at: over 5 years ago - Stars: 1 - Forks: 0

httpnotonly/AppSec-guidelines-ru

Гайды на русском

Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: over 6 years ago - Stars: 0 - Forks: 0